Windows TCO/Security Blunders
-
The Verge ☛ Microsoft left internal passwords exposed in latest security blunder
Microsoft was notified about the vulnerability on February 6th, and locked it down by March 5th. It’s unclear if anyone else accessed the exposed server during this time. We have reached out to Microsoft for comment and will update this story if we hear back.
-
[Repeat] Scoop News Group ☛ Extortion group threatens to sell Change Healthcare data
The ransomware group known as ALPHV or BlackCat claimed responsibility for the attack on Change Healthcare. The attack appears to have been carried out by an ALPHV associate known as “notchy,” with the understanding that the two entities would split the proceeds of any ransom paid. But after Change Healthcare’s parent company apparently paid a $22 million ransom, notchy claimed that ALPHV took that money and disappeared, scamming notchy out of their share.